Gridinsoft Logo
File Icon

The PcyybAssistant.exe (腾讯应用宝) File Analysis

Technical Analysis

File Name PcyybAssistant.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.216.174
Database Version 2025-05-03 16:00:14 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
2,128,056
File Size (bytes)
2025-05-03
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
4857759fd4516476d7c0c538dce4a610
SHA1
94a71e24ddf3dd431cb20b062751f8c91ddd411d
SHA256
ebdf2b7f481d00c8fbf68ba9cf973399764b587920ecf31bbe4f945e63e3ffb7
SHA512
7168d19ef3bd9b970384bdaabe947036c03eca33c184550e75bb1603c8f42c1d411d6526fbd9d5ebbe2ae587cc4d315a0979f514c300d5902b54aea46f4de6b9
ImpHash
860fea8a9f8d079a55dc78eb23264505

PE Analysis

Basic Information

Icon
Hash: 5d01bd2cedae64997df260f8c17783ed
Fuzzy: 7e5736be62a3d55cba21787eea828530
dHash: cc27337171331acc
Image Base 0x00400000
Entry Point 0x005042a9
Compilation Time 2023-11-02 09:08:19
Checksum 0x00213114 (Actual: 0x00213114)
OS Version 6.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
PDB Path E:\workplace\Androws\p-c9a10cf9570f40899fe60201434789b7\Build\bin\Release\PcyybAssistant.pdb
Digital Signature OK
Imports 23 libraries
Exports 0 functions
Resources 9 Resources
Sections 6 Sections

Version Information

CompanyName Tencent
FileDescription 腾讯应用宝
FileVersion 1.0.109.0
LegalCopyright Copyright (C) 2022. All Rights Reserved.
InternalName Androws
ProductName Androws
ProductVersion 1.0.109.0
Translation 0x0000 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 1,512,641 bytes 1,512,960 bytes 6.66 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 93BD219D30E248665FD94FA14A979382
.rdata 0x00173000 382,134 bytes 382,464 bytes 6.15 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 93E9F64287E38105432CB62CA1CDBE3A
.data 0x001d1000 64,416 bytes 52,224 bytes 5.23 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE A4F76D882673619CEFA1B9C51CB466D7
.QMGuid 0x001e1000 32 bytes 512 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_SHARED|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE BF619EAC0CDF3F68D496EA9344137E8B
.rsrc 0x001e2000 107,216 bytes 107,520 bytes 2.26 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 7F49873697ED38478456CA262A4E98E6
.reloc 0x001fd000 61,948 bytes 61,952 bytes 6.65 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 43797A6F6305FDFCF139588E45E29E02
Entropy Analysis Alert

2 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 9 (106,623 bytes)
Resource Type Count Total Size Percentage
RT_ICON 6 105,508 bytes
99%
RT_GROUP_ICON 1 90 bytes
0.1%
RT_VERSION 1 644 bytes
0.6%
RT_MANIFEST 1 381 bytes
0.4%

Certificate Chain Analysis

Certificate Information
Product Androws
Description 腾讯应用宝
File Version 1.0.109.0
Signing Date 05:03 AM 02/04/2024 (487 days ago)
Verification Status Signed
Signers Tencent Technology(Shenzhen) Company Limited; DigiCert SHA2 Assured ID Code Signing CA; DigiCert
Counter Signers DigiCert Timestamp 2023; DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA; DigiCert Trusted Root G4; DigiCert
Internal Name Androws
Copyright Copyright (C) 2022. All Rights Reserved.
Certificate Chain Summary
DigiCert SHA2 Assured ID Code Signing CA #1 Primary
Validity Period: 2013-10-22 12:00:00 → 2028-10-22 12:00:00
Signature Algorithm: sha256RSA
Serial Number: 04 09 18 1B 5F D5 BB 66 75 53 43 B5 6F 95 50 08
Tencent Technology(Shenzhen) Company Limited #2 Chain
Validity Period: 2020-11-25 00:00:00 → 2024-02-22 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 0E A7 F6 86 BC 40 35 4A 70 F2 C2 97 C1 31 5E F6
DigiCert Timestamp 2023 #3 Chain
Validity Period: 2023-07-14 00:00:00 → 2034-10-13 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 05 44 AF F3 94 9D 08 39 A6 BF DB 3F 5F E5 61 16
DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA #4 Chain
Validity Period: 2022-03-23 00:00:00 → 2037-03-22 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 07 36 37 B7 24 54 7C D8 47 AC FD 28 66 2A 5E 5B
DigiCert Trusted Root G4 #5 Chain
Validity Period: 2022-08-01 00:00:00 → 2031-11-09 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 0E 9B 18 8E F9 D0 2D E7 EF DB 50 E2 08 40 18 5A

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware